function readOnly(count){ }
Starting November 20, the site will be set to read-only. On December 4, 2023,
forum discussions will move to the Trailblazer Community.
+ Start a Discussion
Scott McArthur 8Scott McArthur 8 

Just in Time Provisioning

We are looing at setting up Single Sign on with AWS Icognito as the Identity Provider for a customer community portal. The user will need to login both to Salesforce and to AWS.  The following scenario has been suggested as a way to create users, creating the community user in Salesforce first and then having a button on the contact record in Salesforce which makes a web service callout to AWS to create the user there. I am not sure if this is the best solution. I would have thought having a button on the Contact record which sends out an email to a registration page on AWS, where the user registers  creating the AWS user and at that point the IDP uses Just in Time Provisioning to create the community user.